threat-profile

Builds threat actor profiles for adversary emulation and outputs JSON for conops.

7|1|Updated Apr 14, 2026
One-click install
npx skills add https://github.com/ArianHobson333/claude-bug-bounty-stack --skill threat-profile
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: threat-profile
Source: https://github.com/ArianHobson333/claude-bug-bounty-stack/tree/main/vendor/Decepticon/skills/soundwave/threat-profile
Command: npx skills add https://github.com/ArianHobson333/claude-bug-bounty-stack --skill threat-profile

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill simplifies the process of creating and managing threat actor profiles, which are essential for realistic adversary emulation and threat modeling.

Core Features & Use Cases

  • Threat Actor Profiling: Create detailed profiles for adversary emulation, including motivation, sophistication, and TTPs.
  • Tier Selection: Recommend which tier of adversary profile fits best for your engagement.
  • Profile Validation: Ensure the profile aligns with your Rules of Engagement (RoE).
  • Output JSON: Generate a JSON object for inclusion in conops.json.

Quick Start

Create a threat profile for a nation-state actor targeting financial institutions.

Frequently Asked Questions about threat-profile

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I build a threat actor profile for adversary emulation?

To build a threat actor profile for adversary emulation, you need to provide the engagement tier, motivation, initial access vectors, and TTPs. The tool then generates a structured profile ready for emulation scenarios.

What is a threat actor profile and why do I need it for threat modeling?

A threat actor profile defines an adversary's motivation, sophistication, and TTPs for realistic threat modeling. It is essential for accurately simulating how specific attackers might compromise your environment during security testing.

How do I validate threat actor TTPs against Rules of Engagement?

Validating threat actor TTPs against Rules of Engagement ensures your adversary emulation stays within authorized boundaries. The tool checks the configured profile to confirm alignment before execution.

Can I export a threat actor profile to JSON for conops?

Yes, you can export a threat actor profile to JSON for conops. The tool outputs a structured JSON object designed specifically for inclusion in your conops.json file to drive emulation exercises.

How do I choose the right adversary tier for a security engagement?

Choosing the right adversary tier for a security engagement depends on your target environment and goals. The tool provides tier recommendations based on the threat actor data you input.